Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2021-26084 KEV |
|
[KEV] Vulnerability in Atlassian confluence-server-and-data-center (CVE-2021-26084)
vulnerability in Atlassian confluence-server-and-data-center (CVE-2021-26084). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-11580 KEV |
|
[KEV] Vulnerability in Atlassian crowd-and-crowd-data-center (CVE-2019-11580)
vulnerability in Atlassian crowd-and-crowd-data-center (CVE-2019-11580). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-3396 KEV |
|
[KEV] Path Traversal in Atlassian confluence-server-and-data-server (CVE-2019-3396)
path traversal in Atlassian confluence-server-and-data-server (CVE-2019-3396). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-42258 KEV |
|
[KEV] SQL Injection in Bqe billquick-web-suite (CVE-2021-42258)
SQL injection in Bqe billquick-web-suite (CVE-2021-42258). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-1497 KEV |
|
[KEV] OS Command Injection in Cisco hyperflex-hx (CVE-2021-1497)
OS command injection in Cisco hyperflex-hx (CVE-2021-1497). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-1498 KEV |
|
[KEV] OS Command Injection in Cisco hyperflex-hx (CVE-2021-1498)
OS command injection in Cisco hyperflex-hx (CVE-2021-1498). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-3161 KEV |
|
[KEV] Vulnerability in cisco (CVE-2020-3161)
vulnerability in cisco (CVE-2020-3161). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-1653 KEV |
|
[KEV] Vulnerability in Cisco small-business-rv320-and-rv325-routers (CVE-2019-1653)
vulnerability in Cisco small-business-rv320-and-rv325-routers (CVE-2019-1653). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-13608 KEV |
|
[KEV] XXE (XML External Entity) in Citrix storefront-server (CVE-2019-13608)
vulnerability in Citrix storefront-server (CVE-2019-13608). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-8193 KEV |
|
[KEV] Vulnerability in Citrix application-delivery-controller-adc (CVE-2020-8193)
vulnerability in Citrix application-delivery-controller-adc (CVE-2020-8193). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-8195 KEV |
|
[KEV] Vulnerability in Citrix application-delivery-controller-adc (CVE-2020-8195)
vulnerability in Citrix application-delivery-controller-adc (CVE-2020-8195). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-8196 KEV |
|
[KEV] Vulnerability in Citrix application-delivery-controller-adc (CVE-2020-8196)
vulnerability in Citrix application-delivery-controller-adc (CVE-2020-8196). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-19781 KEV |
|
[KEV] Path Traversal in Citrix application-delivery-controller-adc (CVE-2019-19781)
path traversal in Citrix application-delivery-controller-adc (CVE-2019-19781). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2019-11634 KEV |
|
[KEV] Vulnerability in Citrix workspace-application-and-receiver-for-windows (CVE-2019-11634)
vulnerability in Citrix workspace-application-and-receiver-for-windows (CVE-2019-11634). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2020-29557 KEV |
|
[KEV] Buffer Overflow in D-link dir-825-r1-devices (CVE-2020-29557)
vulnerability in D-link dir-825-r1-devices (CVE-2020-29557). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-25506 KEV |
|
[KEV] OS Command Injection in D-link dns-320-device (CVE-2020-25506)
OS command injection in D-link dns-320-device (CVE-2020-25506). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2018-15811 KEV |
|
[KEV] Vulnerability in Dotnetnuke (dnn) dotnetnuke-dnn (CVE-2018-15811)
vulnerability in Dotnetnuke (dnn) dotnetnuke-dnn (CVE-2018-15811). Confidential information can be exposed externally. Listed in CISA KEV — actively exploited.
|
| CVE-2018-18325 KEV |
|
[KEV] Vulnerability in Dotnetnuke (dnn) dotnetnuke-dnn (CVE-2018-18325)
vulnerability in Dotnetnuke (dnn) dotnetnuke-dnn (CVE-2018-18325). Confidential information can be exposed externally. Listed in CISA KEV — actively exploited.
|
| CVE-2017-9822 KEV |
|
[KEV] Vulnerability in Dotnetnuke (dnn) dotnetnuke-dnn (CVE-2017-9822)
vulnerability in Dotnetnuke (dnn) dotnetnuke-dnn (CVE-2017-9822). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2019-15752 KEV |
|
[KEV] Vulnerability in Docker desktop-community-edition (CVE-2019-15752)
vulnerability in Docker desktop-community-edition (CVE-2019-15752). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2020-8657 KEV |
|
[KEV] Vulnerability in eyesofnetwork (CVE-2020-8657)
vulnerability in eyesofnetwork (CVE-2020-8657). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2020-8655 KEV |
|
[KEV] Privilege Escalation in eyesofnetwork (CVE-2020-8655)
vulnerability in eyesofnetwork (CVE-2020-8655). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2021-22986 KEV |
|
[KEV] Authorization Flaw in F5 big-ip-and-big-iq-centralized-management (CVE-2021-22986)
vulnerability in F5 big-ip-and-big-iq-centralized-management (CVE-2021-22986). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-35464 KEV |
|
[KEV] Unsafe Deserialization in Forgerock access-management-am (CVE-2021-35464)
vulnerability in Forgerock access-management-am (CVE-2021-35464). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-16010 KEV |
|
[KEV] Out-of-Bounds Write in Google chrome-for-android-ui (CVE-2020-16010)
out-of-bounds write in Google chrome-for-android-ui (CVE-2020-16010). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-15999 KEV |
|
[KEV] Out-of-Bounds Write in Google platform/external/freetype (CVE-2020-15999)
out-of-bounds write in Google platform/external/freetype (CVE-2020-15999). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited. Mitigation: upgrade to `11:2021-01-01` or later.
|
| CVE-2021-30633 KEV |
|
[KEV] Use-After-Free in Google chromium-indexed-db-api (CVE-2021-30633)
vulnerability in Google chromium-indexed-db-api (CVE-2021-30633). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-37973 KEV |
|
[KEV] Use-After-Free in Google chromium-portals (CVE-2021-37973)
vulnerability in Google chromium-portals (CVE-2021-37973). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-30554 KEV |
|
[KEV] Use-After-Free in Google chromium-webgl (CVE-2021-30554)
vulnerability in Google chromium-webgl (CVE-2021-30554). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-21206 KEV |
|
[KEV] Use-After-Free in Google chromium-blink (CVE-2021-21206)
vulnerability in Google chromium-blink (CVE-2021-21206). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-21193 KEV |
|
[KEV] Use-After-Free in Google chromium-blink (CVE-2021-21193)
vulnerability in Google chromium-blink (CVE-2021-21193). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-4430 KEV |
|
[KEV] Path Traversal in Ibm data-risk-manager (CVE-2020-4430)
path traversal in Ibm data-risk-manager (CVE-2020-4430). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-4427 KEV |
|
[KEV] Vulnerability in Ibm data-risk-manager (CVE-2020-4427)
vulnerability in Ibm data-risk-manager (CVE-2020-4427). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-4428 KEV |
|
[KEV] OS Command Injection in Ibm data-risk-manager (CVE-2020-4428)
OS command injection in Ibm data-risk-manager (CVE-2020-4428). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-4716 KEV |
|
[KEV] Code Injection in Ibm planning-analytics (CVE-2019-4716)
code injection in Ibm planning-analytics (CVE-2019-4716). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-15505 KEV |
|
[KEV] Vulnerability in Ivanti mobileiron-multiple-products (CVE-2020-15505)
vulnerability in Ivanti mobileiron-multiple-products (CVE-2020-15505). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-7961 KEV |
|
[KEV] Unsafe Deserialization in liferay (CVE-2020-7961)
vulnerability in liferay (CVE-2020-7961). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2021-23874 KEV |
|
[KEV] Vulnerability in mcafee (CVE-2021-23874)
vulnerability in mcafee (CVE-2021-23874). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-22506 KEV |
|
[KEV] Vulnerability in Micro focus micro-focus (CVE-2021-22506)
vulnerability in Micro focus micro-focus (CVE-2021-22506). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-22502 KEV |
|
[KEV] Vulnerability in Micro focus micro-focus (CVE-2021-22502)
vulnerability in Micro focus micro-focus (CVE-2021-22502). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-38647 KEV |
|
[KEV] Vulnerability in Microsoft open-management-infrastructure-omi (CVE-2021-38647)
vulnerability in Microsoft open-management-infrastructure-omi (CVE-2021-38647). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2021-38645 KEV |
|
[KEV] Privilege Escalation in Microsoft open-management-infrastructure-omi (CVE-2021-38645)
vulnerability in Microsoft open-management-infrastructure-omi (CVE-2021-38645). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2021-38649 KEV |
|
[KEV] Privilege Escalation in Microsoft open-management-infrastructure-omi (CVE-2021-38649)
vulnerability in Microsoft open-management-infrastructure-omi (CVE-2021-38649). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2021-38648 KEV |
|
[KEV] Privilege Escalation in Microsoft open-management-infrastructure-omi (CVE-2021-38648)
vulnerability in Microsoft open-management-infrastructure-omi (CVE-2021-38648). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2021-31199 KEV |
|
[KEV] Vulnerability in Microsoft enhanced-cryptographic-provider (CVE-2021-31199)
vulnerability in Microsoft enhanced-cryptographic-provider (CVE-2021-31199). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-31201 KEV |
|
[KEV] Vulnerability in Microsoft enhanced-cryptographic-provider (CVE-2021-31201)
vulnerability in Microsoft enhanced-cryptographic-provider (CVE-2021-31201). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2017-7269 KEV |
|
[KEV] Buffer Overflow in Microsoft internet-information-services-iis (CVE-2017-7269)
vulnerability in Microsoft internet-information-services-iis (CVE-2017-7269). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-0708 KEV |
|
[KEV] Use-After-Free in Microsoft remote-desktop-services (CVE-2019-0708)
vulnerability in Microsoft remote-desktop-services (CVE-2019-0708). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-1040 KEV |
|
[KEV] Vulnerability in Microsoft hyper-v-remotefx (CVE-2020-1040)
vulnerability in Microsoft hyper-v-remotefx (CVE-2020-1040). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-40444 KEV |
|
[KEV] Path Traversal in Microsoft mshtml (CVE-2021-40444)
path traversal in Microsoft mshtml (CVE-2021-40444). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|